{"id":"CLSA-2026-1791290343","summary":"TuxCare security update for jsonpath-plus (2 CVEs)","details":"TuxCare rebuilt jsonpath-plus to address 2 CVEs. Fixed in 4.0.0-tuxcare.1.","modified":"2026-10-06T13:30:04.424932506Z","published":"2026-10-06T12:39:03Z","upstream":["CVE-2024-21534","CVE-2025-1302"],"affected":[{"package":{"name":"jsonpath-plus","ecosystem":"TuxCare:npm","purl":"pkg:npm/jsonpath-plus"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.0-tuxcare.1"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_lang/npm/CLSA-2026-1791290343.json"}}],"schema_version":"1.9.0"}